Malware

Win32/Delf.VAT information

Malware Removal

The Win32/Delf.VAT is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Delf.VAT virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Win32/Delf.VAT?


File Info:

name: 41AD4002348312800810.mlw
path: /opt/CAPEv2/storage/binaries/f97c64bfb0cb2a10f39fe76265d7817bc9ae574e64a44d61386a3988599f5895
crc32: B66FE726
md5: 41ad40023483128008107ab092e8b26e
sha1: 1935eaabbff67ef166a7e01a6ef4c2ed5813b0ab
sha256: f97c64bfb0cb2a10f39fe76265d7817bc9ae574e64a44d61386a3988599f5895
sha512: 8854e09594608f8b7c02492fb605e34e9c6092cb1d724d403aaa2b12bcead0347efaa1e2950a834307f0f309b6d34fe9a9962b368588d037b73fafc3020c826a
ssdeep: 12288:j9vjGxho1H+oJ6mJIql6nYpys8yK4rR313:p7Eo4oJ6mp6n6woF313
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T128948F76F7D08433D1732979AC1B92ACA826BE612E38344A7FD82D4C5F3D7813529297
sha3_384: 83a2e807b530159a478d15012fa4fa59a231388a32247c094bf26bf52b507073e48721e9d94d37fb0ef751192482368e
ep_bytes: 558bec83c4f0a190694500c60001b850
timestamp: 1992-06-19 22:22:17

Version Info:

Comments: App di calcolo scientifico
CompanyName: Calcola
FileDescription: App di calcolo scientifico
FileVersion: 3.85.8.3992
InternalName: Calcola
LegalCopyright: Copyright © CalcolaScienza Inc. 2009
ProductName: Calcola
ProductVersion: 3.85.8.3992
Translation: 0x0000 0x04e4

Win32/Delf.VAT also known as:

MicroWorld-eScanTrojan.GenericKD.70210366
FireEyeTrojan.GenericKD.70210366
SkyhighBehavesLike.Win32.BadFile.gh
ALYacTrojan.GenericKD.70210366
VIPRETrojan.GenericKD.70210366
SangforTrojan.Win32.Delf.Vsw8
BitDefenderTrojan.GenericKD.70210366
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Delf.VAT
RisingTrojan.Delf!8.67 (TFE:5:bczRBbor8FR)
SophosMal/Generic-S
EmsisoftTrojan.GenericKD.70210366 (B)
MAXmalware (ai score=88)
GoogleDetected
Antiy-AVLTrojan/Win32.Delf
MicrosoftTrojan:Win32/Caynamer.A!ml
ArcabitTrojan.Generic.D42F533E
GDataTrojan.GenericKD.70210366
McAfeeArtemis!41AD40023483
DeepInstinctMALICIOUS
Cylanceunsafe
IkarusTrojan.Win32.Delf
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Delf.VAT!tr
AVGWin32:DropperX-gen [Drp]
AvastWin32:DropperX-gen [Drp]
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Win32/Delf.VAT?

Win32/Delf.VAT removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment